<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Web authentication and Mac spoofing in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055247#M19336</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Thanks for the welcome&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For Web Auth i use local user in the WLC created by lobby ambassador.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 02 Oct 2012 12:11:37 GMT</pubDate>
    <dc:creator>Gabriele01_2</dc:creator>
    <dc:date>2012-10-02T12:11:37Z</dc:date>
    <item>
      <title>Web authentication and Mac spoofing</title>
      <link>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055245#M19334</link>
      <description>&lt;P&gt;I have a 5508 WLC and some 3502i CAP.&lt;/P&gt;&lt;P&gt;I have configured a guest SSID with no encryption and Web Authentication.&lt;/P&gt;&lt;P&gt;If an attacker client use a spoofed mac address of a client correctly authenticated he can access without any authentication.&lt;/P&gt;&lt;P&gt;Is there anything i can do to prevent this?&lt;/P&gt;&lt;P&gt;Use MFP would be complicated since many client are not CCX v5 compliant.&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 05:44:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055245#M19334</guid>
      <dc:creator>Gabriele01_2</dc:creator>
      <dc:date>2021-07-04T05:44:56Z</dc:date>
    </item>
    <item>
      <title>Web authentication and Mac spoofing</title>
      <link>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055246#M19335</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Welcome to the forums ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What are you using for Web Auth, email, simple accept, logon ? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;__________________________________________________________________________________________ &lt;BR /&gt;"Satisfaction does not come from knowing the solution, it comes from knowing why." - Rosalind Franklin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Oct 2012 15:51:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055246#M19335</guid>
      <dc:creator>George Stefanick</dc:creator>
      <dc:date>2012-10-01T15:51:41Z</dc:date>
    </item>
    <item>
      <title>Web authentication and Mac spoofing</title>
      <link>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055247#M19336</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Thanks for the welcome&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For Web Auth i use local user in the WLC created by lobby ambassador.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Oct 2012 12:11:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055247#M19336</guid>
      <dc:creator>Gabriele01_2</dc:creator>
      <dc:date>2012-10-02T12:11:37Z</dc:date>
    </item>
    <item>
      <title>Re: Web authentication and Mac spoofing</title>
      <link>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055248#M19337</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well for one, this is guest access, so they should not be able to access your internal network anyway correct.  There also can only be one MAC address at one time. There also is a session timeout value which forces a login again and an idle timeout value. Like in any WebAuth out there, the guy that wants to hop on to a guest network would have to wait until the original user leaves. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Oct 2012 13:24:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/web-authentication-and-mac-spoofing/m-p/2055248#M19337</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2012-10-02T13:24:27Z</dc:date>
    </item>
  </channel>
</rss>

